BULLETIN №083Last updated · 10 Aug 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.5m
- YoY volume
- -23.1%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 08 Aug 2014 | INFOASSIST A.E.INFOASSIST A.E. was fined by the HDPA 7,500 EUR for processing personal data without consent. The authority found breaches of legality and data minimization principles. | GR | HDPA | GDPR | €7,500 | ↗ |
| 08 Aug 2014 | Hummingbird EPEHummingbird EPE was fined by the HDPA for processing publicly available personal data without the consent of the data subjects. The authority found a breach of the principles of data relevance and proportionality. | GR | HDPA | GDPR | €7,500 | ↗ |
| 08 Aug 2014 | Anonymised (HDPA 115/2014)The controller was fined for processing personal data without consent and for sending unsolicited marketing messages. The case indicates breaches of core data protection and marketing communication obligations. | GR | HDPA | ePrivacy | €1,500 | ↗ |
| 08 Aug 2014 | PARAMOUNT A.E.The company was fined EUR 5,000 by the HDPA for processing publicly available personal data without consent. The authority found a breach of the principles of lawful data collection and proportionality. | GR | HDPA | GDPR | €5,000 | ↗ |
| 08 Aug 2014 | Compass ExpoCompass Expo was fined EUR 10,000 by the HDPA for sending unsolicited electronic communications without recipients' consent. The authority found a breach of Article 11 of Law 3471/2006. | GR | HDPA | ePrivacy | €10,000 | ↗ |
| 08 Aug 2014 | L & J ELLAS ANONYMOUS VIOMICHANIKI KAI EMPORIKI ETAIREIA AUTOKINITON-EPISIMOS EISAGOGEAS OCHIMATON LANCIA & JEEPThe company was fined by the HDPA 1,000 EUR for processing publicly available personal data without consent. The authority also found that it lacked a written data processing agreement with a third party. | GR | HDPA | GDPR | €1,000 | ↗ |
| 08 Aug 2014 | Anonymised (HDPA 104/2014)The supervisory authority found that the controller processed personal data without the data subjects' consent. The breach concerned the principles governing data processing under Greek law. | GR | HDPA | GDPR | €6,000 | ↗ |
| 08 Aug 2014 | Anonymised (HDPA 112/2014)The controller sent unsolicited marketing SMS messages without recipients' consent, breaching data protection rules. The case concerned the use of contact data for marketing without a valid legal basis. | GR | HDPA | ePrivacy | €1,000 | ↗ |
| 06 Aug 2014 | ECLIPSE COMUNICACION DIXITAL S.L.ECLIPSE COMUNICACION DIXITAL S.L. was fined by the AEPD in the amount of 6,000 EUR for sending unsolicited advertising emails. The company continued sending messages despite requests to be removed, which constitutes a breach of Article 21 of the LSSI. | ES | AEPD | ePrivacy | €6,000 | ↗ |
| 04 Aug 2014 | SERVICIOS DE DEPILACION BLOC, S.L.SERVICIOS DE DEPILACION BLOC, S.L. was fined by the AEPD EUR 3,000 for sending unsolicited commercial SMS messages to a former client. The authority found that this conduct breached Article 21 of the LSSI on marketing communications. | ES | AEPD | ePrivacy | €3,000 | ↗ |
| 04 Aug 2014 | SERVICIOS DE DEPILACION BLOC, S.L.SERVICIOS DE DEPILACION BLOC, S.L. was fined by the AEPD 4,000 EUR for sending unsolicited commercial SMS messages to a former client. The conduct breached Article 21 of the LSSI on marketing communications without prior consent. | ES | AEPD | ePrivacy | €4,000 | ↗ |
| 30 Jul 2014 | ORANGE ESPAGNE S.A.U.ORANGE ESPAGNE S.A.U. was fined by the AEPD EUR 1,500 for sending unsolicited commercial SMS messages. The recipient had previously requested removal from the advertising list, and the conduct breached Article 21.1 of the LSSI. | ES | AEPD | ePrivacy | €1,500 | ↗ |
| 24 Jul 2014 | Future srlFuture srl was fined EUR 36,000 by the Garante for making unsolicited promotional phone calls without proper consent. The authority found that the company’s conduct breached data protection rules. | IT | Garante | GDPR | €36,000 | ↗ |
| 24 Jul 2014 | Intermatica Holding s.r.l.Intermatica Holding s.r.l. was fined by the Italian Garante for failing to adopt minimum security measures. The company used passwords of seven characters instead of the required eight, breaching Article 33 of the Italian Data Protection Code. | IT | Garante | GDPR | €4,000 | ↗ |
| 24 Jul 2014 | Easy Call srlEasy Call srl was fined EUR 112,000 by the Garante for making unsolicited promotional calls. The company contacted individuals listed in the opposition register, breaching data protection rules. | IT | Garante | GDPR | €112,000 | ↗ |
| 10 Jul 2014 | Clinica Siligato s.r.l.Clinica Siligato s.r.l. was fined for failing to notify the Garante of certain processing activities involving health data. The case concerned data used to detect infectious diseases and HIV status, which had to be reported under the Italian Data Protection Code. | IT | Garante | GDPR | €8,000 | ↗ |
| 10 Jul 2014 | Comune di OrbetelloThe Municipality of Orbetello was fined EUR 10,000 by the Italian data protection authority, Garante. The sanction concerned the publication of individuals’ personal health data on the municipality’s official website, in breach of privacy rules. | IT | Garante | GDPR | €10,000 | ↗ |
| 10 Jul 2014 | Onbrand Call s.r.lOnbrand Call s.r.l was fined by the Garante for processing personal data through a web form without providing the required information notice. The authority found a breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 03 Jul 2014 | Tenacta Group s.p.a.Tenacta Group s.p.a. was fined 10,000 EUR by the Garante for making unsolicited promotional phone calls. The company failed to consult the public opposition register, thereby violating the subscriber's right to object. | IT | Garante | GDPR | €10,000 | ↗ |
| 30 Jun 2014 | ATRAPALO, S.L.ATRAPALO, S.L. was fined by the AEPD EUR 600 for sending unsolicited commercial emails to a user who had previously requested to unsubscribe. The authority found a breach of Article 21.1 of the LSSI. | ES | AEPD | ePrivacy | €600 | ↗ |